An unspecified overlow vulnerability was fixed in ICU [1] and Chrome browser [2][3]. [1]: http://bugs.icu-project.org/trac/changeset/36801 [2]: https://code.google.com/p/chromium/issues/detail?id=432209 [3]: https://chromium.googlesource.com/chromium/deps/icu/+/dd727641e190d60e4593bcb3a35c7f51eb4925c5
Created mingw-icu tracking bugs for this issue: Affects: fedora-all [bug 1190132] Affects: epel-7 [bug 1190133]
Created icu tracking bugs for this issue: Affects: fedora-all [bug 1190131]
This issue was previously grouped with other Chrome issues under the Google Chrome CVE-2015-1205. Bug 1185282 comment 1 lists information that is currently public about this flaw: Chrome upstream bug and commit: https://code.google.com/p/chromium/issues/detail?id=432209 https://chromium.googlesource.com/chromium/deps/icu/+/dd727641e190d60e4593bcb3a35c7f51eb4925c5 ICU upstream bug and commit: http://bugs.icu-project.org/trac/ticket/11371 http://bugs.icu-project.org/trac/changeset/36801 "Improved checking of regular expression pattern size limits." Both upstream bugs are non-public. Chrome bug is likely to be made public as some point.
icu-50.1.2-12.fc20 has been pushed to the Fedora 20 stable repository. If problems still persist, please make note of it in this bug report.
icu-52.1-6.fc21 has been pushed to the Fedora 21 stable repository. If problems still persist, please make note of it in this bug report.
icu-54.1-5.fc23 has been pushed to the Fedora 23 stable repository. If problems still persist, please make note of it in this bug report.
icu-54.1-4.fc22 has been pushed to the Fedora 22 stable repository. If problems still persist, please make note of it in this bug report.